Vulnerabilities > Microsoft > Dynamics 365 > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-10-13 CVE-2021-41354 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0/9.1
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
5.4
2021-08-12 CVE-2021-36950 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
5.4
2021-05-11 CVE-2021-28461 Cross-site Scripting vulnerability in Microsoft Dynamics 365
Dynamics Finance and Operations Cross-site Scripting Vulnerability
low complexity
microsoft CWE-79
6.1
2021-02-25 CVE-2021-24101 Unspecified vulnerability in Microsoft Dynamics 365 8.2/9.0
Microsoft Dataverse Information Disclosure Vulnerability
network
low complexity
microsoft
6.5
2020-11-11 CVE-2020-17021 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
5.4
2020-11-11 CVE-2020-17018 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
5.4
2020-11-11 CVE-2020-17005 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0
Microsoft Dynamics 365 (on-premises) Cross-site Scripting Vulnerability
network
low complexity
microsoft CWE-79
5.4
2020-10-16 CVE-2020-16978 Cross-site Scripting vulnerability in Microsoft Dynamics 365 9.0
<p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server.
network
low complexity
microsoft CWE-79
5.4
2020-10-16 CVE-2020-16956 Cross-site Scripting vulnerability in Microsoft Dynamics 365 8.2/9.0
<p>A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server.
network
low complexity
microsoft CWE-79
5.4
2020-10-16 CVE-2020-16943 Unspecified vulnerability in Microsoft Dynamics 365
<p>An elevation of privilege vulnerability exists in Microsoft Dynamics 365 Commerce.
low complexity
microsoft
6.5